<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Security Breached</title><description>Bug bounty POCs, ethical hacking writeups and cybersecurity tutorials.</description><link>https://blog.securitybreached.org/</link><language>en-us</language><item><title>Purple Teaming: What Not to Do in OT &amp; IoT Testing to Avoid Halting the Factory or Sinking the Oil Rig</title><link>https://blog.securitybreached.org/2025/01/20/purple-teaming-what-not-to-do-in-ot-iot-testing-to-avoid-halting-the-factory-or-sinking-the-oil-rig/</link><guid isPermaLink="true">https://blog.securitybreached.org/2025/01/20/purple-teaming-what-not-to-do-in-ot-iot-testing-to-avoid-halting-the-factory-or-sinking-the-oil-rig/</guid><description>Testing operational and IoT systems is no easy feat, especially when the stakes involve halting a factory or sinking an oil rig. Every one of us who has embarked on the journey to test OT/IoT systems has felt nervous and cautious about things going south. Here’s to all the comrades out there who want to excel in these situations</description><pubDate>Mon, 20 Jan 2025 08:47:26 GMT</pubDate><category>purple-teaming</category><category>how-to</category><category>iot-security</category><category>purpleteaming</category><category>redteaming</category><category>tutorials</category></item><item><title>From Staging to Full Admin Control In Prod: A Breakdown of Critical Authentication Flaws</title><link>https://blog.securitybreached.org/2024/10/22/from-staging-to-full-admin-control-in-prod-a-breakdown-of-critical-authentication-flaws/</link><guid isPermaLink="true">https://blog.securitybreached.org/2024/10/22/from-staging-to-full-admin-control-in-prod-a-breakdown-of-critical-authentication-flaws/</guid><description>In this blog, I explore a real-world case of an Admin Panel Takeover caused by broken authentication and insecure configurations. By exploiting a misconfigured JWT token from a staging environment, full administrative access was gained to a production system, exposing sensitive user data and critical application controls.</description><pubDate>Tue, 22 Oct 2024 14:59:39 GMT</pubDate><category>bugbounty-poc</category><category>authentication-bypass</category><category>bugbounty</category><category>bugbounty-poc</category><category>vulnerability</category></item><item><title>AI Hijack: How I Took Control of an AI Assistant</title><link>https://blog.securitybreached.org/2024/10/14/ai-hijack-how-i-took-control-of-an-ai-assistant/</link><guid isPermaLink="true">https://blog.securitybreached.org/2024/10/14/ai-hijack-how-i-took-control-of-an-ai-assistant/</guid><description>A simple API key leak led to the complete takeover of an AI assistant in production. Allowing to change AI&apos;s Instructions.</description><pubDate>Mon, 14 Oct 2024 03:38:18 GMT</pubDate><category>bugbounty-poc</category><category>ai-security</category><category>bugbounty</category><category>bugbounty-poc</category><category>vulnerability</category></item><item><title>Finding Hidden Threats: How I Found Leaked AWS Credentials in an Android App API Using DAST</title><link>https://blog.securitybreached.org/2024/06/28/finding-hidden-threats-how-i-found-leaked-aws-credentials-in-an-android-app-api-using-dast/</link><guid isPermaLink="true">https://blog.securitybreached.org/2024/06/28/finding-hidden-threats-how-i-found-leaked-aws-credentials-in-an-android-app-api-using-dast/</guid><description>Found a critical vulnerability involving leaked AWS credentials within an Android App API during a bug bounty hunt. by utilizing Dynamic Application Security Testing (DAST) and the Mobile Security Framework (MobSF) to uncover the vulnerability. This blog post provides a step-by-step guide for newcomers to set up their own testing environments and utilize MobSF.</description><pubDate>Fri, 28 Jun 2024 22:32:31 GMT</pubDate><category>bugbounty-poc</category><category>tutorials</category><category>android-security</category><category>api-security</category><category>application-security</category><category>aws-takeover</category><category>aws-vulnerabilities</category><category>bugbounty</category><category>bugbounty-poc</category><category>cybersecurity</category><category>dast</category><category>dynamic-analysis</category><category>mobile-app-security</category><category>mobsf</category><category>mobsf-tutorial</category><category>security-testing</category><category>security-tools</category><category>subdomain-takeover</category><category>tutorials</category><category>vulnerability</category><category>vulnerability-detection</category></item><item><title>Bug Bounty Blueprint: A Beginner&apos;s Guide</title><link>https://blog.securitybreached.org/2023/08/18/bug-bounty-blueprint-a-beginners-guide/</link><guid isPermaLink="true">https://blog.securitybreached.org/2023/08/18/bug-bounty-blueprint-a-beginners-guide/</guid><description>This guide is for beginners to dive into Bug Bounty Hunting. It provides foundational skills, tips, tools, and resources for Bug Bounty Hunters.</description><pubDate>Fri, 18 Aug 2023 03:02:58 GMT</pubDate><category>bug-bounty-guide</category><category>bug-bounty-beginners-guide</category><category>bug-bounty-blueprint-a-beginners-guide</category><category>bug-bounty-guide</category><category>bug-bounty-hunting</category><category>cloud-security</category><category>ctf-challenges</category><category>cybersecurity</category><category>cybersecurity-certification</category><category>ethical-hacking</category><category>guide-001-getting-started-in-bug-bounty-hunting</category><category>hacker-community</category><category>how-to-learn-bug-bounty-hunting</category><category>how-to</category><category>it-training</category><category>learning-resources</category><category>online-learning</category><category>online-security</category><category>penetration-testing</category><category>practical-tips</category><category>report-writing</category><category>security-research</category><category>skill-development</category><category>technology</category><category>vulnerability-assessment</category><category>web-security</category></item><item><title>How I Manipulated My Rank on the Bugcrowd Platform</title><link>https://blog.securitybreached.org/2023/04/19/how-i-manipulated-my-rank-on-the-bugcrowd-platform/</link><guid isPermaLink="true">https://blog.securitybreached.org/2023/04/19/how-i-manipulated-my-rank-on-the-bugcrowd-platform/</guid><description>In recent years, Bug Bounties have gained significant popularity as a growing number of companies rely on crowdsourcing platforms to identify vulnerabilities within their systems. As such, the securit</description><pubDate>Wed, 19 Apr 2023 03:27:43 GMT</pubDate><category>bugbounty-poc</category><category>tutorials</category><category>bugbounty</category><category>bugbounty-poc</category><category>tutorials</category><category>vulnerability</category></item><item><title>Hacking 100k+ Loyalty Programs for Fun and Profit!</title><link>https://blog.securitybreached.org/2022/05/19/hacking-100k-loyalty-programs-for-fun-and-profit/</link><guid isPermaLink="true">https://blog.securitybreached.org/2022/05/19/hacking-100k-loyalty-programs-for-fun-and-profit/</guid><description>This blog post is about how a hacker could have Hacked 100k+ Loyalty Programs to get free points &amp; redeem them for free stuff or coupons.</description><pubDate>Thu, 19 May 2022 21:15:32 GMT</pubDate><category>bugbounty-poc</category><category>bugbounty</category><category>bugbounty-poc</category><category>how-to</category><category>vulnerability</category></item><item><title>Hacking Subscription Plans for free service.</title><link>https://blog.securitybreached.org/2022/02/27/hacking-subscription-plans-for-free-service/</link><guid isPermaLink="true">https://blog.securitybreached.org/2022/02/27/hacking-subscription-plans-for-free-service/</guid><description>The blog post describes how I was able to bypass subscription plans to get access to paid services for free.</description><pubDate>Sun, 27 Feb 2022 01:14:52 GMT</pubDate><category>bugbounty-poc</category><category>bugbounty</category><category>bugbounty-poc</category><category>tutorials</category><category>vulnerability</category></item><item><title>Using Inspect Element to Bypass Security restrictions | Bug Bounty POC</title><link>https://blog.securitybreached.org/2020/06/30/using-inspect-element-to-bypass-security-restrictions-bug-bounty-poc/</link><guid isPermaLink="true">https://blog.securitybreached.org/2020/06/30/using-inspect-element-to-bypass-security-restrictions-bug-bounty-poc/</guid><description>Hey guys so this blog post is how I was able to Bypass Security restrictions by using inspect element and use Paid Features.</description><pubDate>Tue, 30 Jun 2020 22:56:18 GMT</pubDate><category>bugbounty-poc</category><category>tutorials</category><category>bugbounty</category><category>bugbounty-poc</category><category>tutorials</category></item><item><title>Playing with JSON Web Tokens for Fun and Profit</title><link>https://blog.securitybreached.org/2020/04/04/playing-with-json-web-tokens-for-fun-and-profit/</link><guid isPermaLink="true">https://blog.securitybreached.org/2020/04/04/playing-with-json-web-tokens-for-fun-and-profit/</guid><description>JSON Web Token (JWT) is an open standard (RFC 7519) that defines a compact and self-contained way for securely transmitting information between parties.</description><pubDate>Sat, 04 Apr 2020 15:44:40 GMT</pubDate><category>bugbounty-poc</category></item><item><title>Microsoft Apache Solr RCE Velocity Template | Bug Bounty POC</title><link>https://blog.securitybreached.org/2020/03/31/microsoft-rce-bugbounty/</link><guid isPermaLink="true">https://blog.securitybreached.org/2020/03/31/microsoft-rce-bugbounty/</guid><description>Hey guys so this blog post is about RCE issue reported to Microsoft bug bounty program, Remote Code execution issue existed in microsoft.com subdomain running Apache Solr.</description><pubDate>Tue, 31 Mar 2020 15:33:29 GMT</pubDate><category>bugbounty-poc</category><category>bugbounty</category><category>bugbounty-poc</category><category>rce</category><category>recon</category><category>vulnerability</category></item><item><title>Getting Started in Android Apps Pen-testing (Part-1)</title><link>https://blog.securitybreached.org/2020/03/17/getting-started-in-android-apps-pentesting/</link><guid isPermaLink="true">https://blog.securitybreached.org/2020/03/17/getting-started-in-android-apps-pentesting/</guid><description>Pen-testing android apps require different methodologies than web applications. The difference is that you have to figure out by different methods.</description><pubDate>Tue, 17 Mar 2020 02:59:21 GMT</pubDate><category>tutorials</category></item><item><title>Hacking SMS API Service Provider of a Company |Android App Static Security Analysis | Bug Bounty POC</title><link>https://blog.securitybreached.org/2020/02/19/hacking-sms-api-service-provider-of-a-company-android-app-static-security-analysis-bug-bounty-poc/</link><guid isPermaLink="true">https://blog.securitybreached.org/2020/02/19/hacking-sms-api-service-provider-of-a-company-android-app-static-security-analysis-bug-bounty-poc/</guid><description>This blog post is about static analysis of Android App &amp; due to insecure storage of SMS API credentials I was able to Takeover the SMS API.</description><pubDate>Wed, 19 Feb 2020 01:14:22 GMT</pubDate><category>bugbounty-poc</category><category>tutorials</category><category>bugbounty-poc</category><category>how-to</category><category>recon</category><category>tutorials</category><category>vulnerability</category></item><item><title>Exploiting Insecure Firebase Database!</title><link>https://blog.securitybreached.org/2020/02/04/exploiting-insecure-firebase-database-bugbounty/</link><guid isPermaLink="true">https://blog.securitybreached.org/2020/02/04/exploiting-insecure-firebase-database-bugbounty/</guid><description>this blog post is about Exploiting Insecure Firebase Databases, due to Improper set security rules one can write data to the database in certain conditions here’s a Short POC tutorial of the issue.</description><pubDate>Tue, 04 Feb 2020 02:41:53 GMT</pubDate><category>bugbounty-poc</category><category>tutorials</category><category>bugbounty</category><category>bugbounty-poc</category><category>hackerone</category><category>recon</category><category>tutorials</category><category>vulnerability</category></item><item><title>Improper Input Validation | Add Custom Text and URLs In SMS send by Snapchat | Bug Bounty POC</title><link>https://blog.securitybreached.org/2020/01/26/improper-input-validation-add-custom-text-and-urls-in-sms-send-by-snapchat-bug-bounty-poc/</link><guid isPermaLink="true">https://blog.securitybreached.org/2020/01/26/improper-input-validation-add-custom-text-and-urls-in-sms-send-by-snapchat-bug-bounty-poc/</guid><description>Hey guys so this blog post is about an Issue in Snapchat&apos;s Website, due to Improper Input Validation one can add custom text &amp; urls in SMS send by Snapchat here&apos;s a Short POC of the issue.</description><pubDate>Sun, 26 Jan 2020 15:05:17 GMT</pubDate><category>bugbounty-poc</category><category>bugbounty-poc</category><category>hackerone</category><category>vulnerability</category></item><item><title>User Account Takeover via Signup Feature | Bug Bounty POC</title><link>https://blog.securitybreached.org/2020/01/22/user-account-takeover-via-signup-feature-bug-bounty-poc/</link><guid isPermaLink="true">https://blog.securitybreached.org/2020/01/22/user-account-takeover-via-signup-feature-bug-bounty-poc/</guid><description>This blog is about an Account Takeover issue i found in a web app where creating a new account on already existing email will give access to users account,</description><pubDate>Wed, 22 Jan 2020 10:48:37 GMT</pubDate><category>bugbounty-poc</category><category>authentication-bypass</category><category>bugbounty-poc</category></item><item><title>How I was Able To Bypass Email Verification</title><link>https://blog.securitybreached.org/2018/12/08/how-i-was-able-to-bypass-email-verification/</link><guid isPermaLink="true">https://blog.securitybreached.org/2018/12/08/how-i-was-able-to-bypass-email-verification/</guid><description>Hello Masters and Learner I hope you are doing well and always put your efforts to secure the world so that no can get benefits unethically.

the main reason why i am writing this article is that some</description><pubDate>Sat, 08 Dec 2018 17:23:11 GMT</pubDate><category>uncategorized</category></item><item><title>Hacking a Company Through help desk - Ticket Trick | Bug Bounty POC</title><link>https://blog.securitybreached.org/2018/11/05/hacking-a-company-through-help-desk-bug-bounty-poc/</link><guid isPermaLink="true">https://blog.securitybreached.org/2018/11/05/hacking-a-company-through-help-desk-bug-bounty-poc/</guid><description>This Blog is about how i found &amp; used Ticket Trick issue to Hack a Comapnies Help Center and access other users support tickets</description><pubDate>Mon, 05 Nov 2018 20:10:46 GMT</pubDate><category>bugbounty-poc</category><category>authentication-bypass</category><category>bugbounty</category><category>bugbounty-poc</category></item><item><title>P1 Like a Boss | Information Disclosure via Github leads to Employee Account Takeover | Bug Bounty POC</title><link>https://blog.securitybreached.org/2018/11/03/p1-like-a-boss-information-disclosure-via-github-leads-to-employee-account-takeover/</link><guid isPermaLink="true">https://blog.securitybreached.org/2018/11/03/p1-like-a-boss-information-disclosure-via-github-leads-to-employee-account-takeover/</guid><description>This Blog is About an issue i found in a site where a .js filke on Github contains a valid Email &amp; Password of an Employee that leads to Help center access.</description><pubDate>Sat, 03 Nov 2018 14:19:58 GMT</pubDate><category>bugbounty-poc</category><category>bugbounty-poc</category><category>recon</category></item><item><title>Privilege Escalation like a Boss</title><link>https://blog.securitybreached.org/2018/10/27/privilege-escalation-like-a-boss/</link><guid isPermaLink="true">https://blog.securitybreached.org/2018/10/27/privilege-escalation-like-a-boss/</guid><description>[gist]afe596e6eb02612562216da7b0636661[/gist]</description><pubDate>Sat, 27 Oct 2018 06:56:37 GMT</pubDate><category>uncategorized</category></item><item><title>Subdomain Takeover via Unsecured S3 Bucket Connected to the Website</title><link>https://blog.securitybreached.org/2018/09/24/subdomain-takeover-via-unsecured-s3-bucket/</link><guid isPermaLink="true">https://blog.securitybreached.org/2018/09/24/subdomain-takeover-via-unsecured-s3-bucket/</guid><description>This Blog is about an issue i found in a web where an Unsecured S3 Bucket connected to the website gave way to Takeover teh Subdoamin.</description><pubDate>Mon, 24 Sep 2018 22:19:34 GMT</pubDate><category>bugbounty-poc</category><category>bugbounty-poc</category><category>subdomain-takeover</category></item><item><title>IDOR User Account Takeover By Connecting My Facebook Account with victims Account</title><link>https://blog.securitybreached.org/2018/09/16/idor-account-takeover-using-facebook/</link><guid isPermaLink="true">https://blog.securitybreached.org/2018/09/16/idor-account-takeover-using-facebook/</guid><description>Blog about an IDOR issue i found in a web where changing user id in FB auth callback request connects my FB account with victims Web Account</description><pubDate>Sun, 16 Sep 2018 21:09:25 GMT</pubDate><category>bugbounty-poc</category><category>idor</category></item><item><title>Authentication Bypass Using SQL Injection AutoTrader Webmail - Bug Bounty POC</title><link>https://blog.securitybreached.org/2018/09/10/sqli-login-bypass-autotraders/</link><guid isPermaLink="true">https://blog.securitybreached.org/2018/09/10/sqli-login-bypass-autotraders/</guid><description>Simple Short POC about an Issue I discovered in AutoTrader Webmail panel that allows Login Bypass and gave me Webmail Admin Panel Access</description><pubDate>Mon, 10 Sep 2018 13:41:25 GMT</pubDate><category>bugbounty-poc</category><category>authentication-bypass</category><category>sql-injection</category></item><item><title>ZOL Zimbabwe Authentication Bypass to XSS &amp; SQLi Vulnerability - Bug Bounty POC</title><link>https://blog.securitybreached.org/2018/09/09/zol-zimbabwe-authbypass-sqli-xss/</link><guid isPermaLink="true">https://blog.securitybreached.org/2018/09/09/zol-zimbabwe-authbypass-sqli-xss/</guid><description>This Post is About an issues I found in ZOL Zimbabwe Website that was Authentication bypass follwong with XSS and SQLi and could lead to Database Takeover.</description><pubDate>Sun, 09 Sep 2018 21:08:39 GMT</pubDate><category>bugbounty-poc</category><category>authentication-bypass</category><category>sql-injection</category><category>xss</category></item><item><title>SQL Injection Vulnerability bootcamp.nutanix.com | Bug Bounty POC</title><link>https://blog.securitybreached.org/2018/09/08/sqli-bootcampnutanix-com-bug-bounty-poc/</link><guid isPermaLink="true">https://blog.securitybreached.org/2018/09/08/sqli-bootcampnutanix-com-bug-bounty-poc/</guid><description>SQL Injection Vulnerability that i found inbootcamp.nutanix.com and how i exploited it - Bug Bounty POC Security Breached Blog</description><pubDate>Sat, 08 Sep 2018 17:17:10 GMT</pubDate><category>bugbounty-poc</category><category>bugbounty-poc</category><category>sql-injection</category></item><item><title>RCE Unsecure Jenkins Instance | Bug Bounty POC</title><link>https://blog.securitybreached.org/2018/09/07/rce-jenkins-instance-dosomething-org-bug-bounty-poc/</link><guid isPermaLink="true">https://blog.securitybreached.org/2018/09/07/rce-jenkins-instance-dosomething-org-bug-bounty-poc/</guid><description>RCE in Jenkins Insecure Instance of Dosomething.org and What can an attacker do with an RCE in an Insecure Jenkins Instance.</description><pubDate>Fri, 07 Sep 2018 21:12:59 GMT</pubDate><category>bugbounty-poc</category><category>bugbounty-poc</category><category>rce</category></item><item><title>Edmodo official number for custom text messages to any number around the world!</title><link>https://blog.securitybreached.org/2018/05/23/edmodo-number-compromised/</link><guid isPermaLink="true">https://blog.securitybreached.org/2018/05/23/edmodo-number-compromised/</guid><description>Hello 1337s,
I hope you all are doing good and hunting websites. Today I&apos;m going to tell you about a very interesting finding which was very simple and I never expected that it could really exist ther</description><pubDate>Wed, 23 May 2018 12:20:33 GMT</pubDate><category>bugbounty-poc</category></item><item><title>IOS 11.4 Siri Auth Bypass | CVE-2018-4238</title><link>https://blog.securitybreached.org/2018/05/22/ios-11-4-authentication-bug-siri-cve-2018-4238/</link><guid isPermaLink="true">https://blog.securitybreached.org/2018/05/22/ios-11-4-authentication-bug-siri-cve-2018-4238/</guid><description>IOS 11.2.6 IOS 11.4 Siri Authentication | CVE-2018-4238</description><pubDate>Tue, 22 May 2018 13:31:05 GMT</pubDate><category>bugbounty-poc</category><category>bugbounty-poc</category></item><item><title>How I was able to get subscription of $120/year For Free | Bug Bounty POC</title><link>https://blog.securitybreached.org/2018/05/18/get-subscription-of-120-year-for-free-bug-bounty-poc/</link><guid isPermaLink="true">https://blog.securitybreached.org/2018/05/18/get-subscription-of-120-year-for-free-bug-bounty-poc/</guid><description>How I was able to get subscription of $120/year For Free WeTransfer Bug Bounty How i found The issue in Wetransfer and reported it via Zerocopter</description><pubDate>Fri, 18 May 2018 09:22:09 GMT</pubDate><category>bugbounty-poc</category><category>bugbounty-poc</category><category>vulnerability</category></item><item><title>How I found IDOR on Twitter&apos;s Acquisition - Mopub.com</title><link>https://blog.securitybreached.org/2018/02/05/how-i-found-idor-on-twitters-acquisition-mopub-com/</link><guid isPermaLink="true">https://blog.securitybreached.org/2018/02/05/how-i-found-idor-on-twitters-acquisition-mopub-com/</guid><description>Hello everyone, Jay Jani noob here with another noobish finding. As 2k18 has started, I thought to hunt down Twitter for gaining reputation on HackerOne. I tried to find a bug on their acquisition - M</description><pubDate>Mon, 05 Feb 2018 08:52:15 GMT</pubDate><category>uncategorized</category></item><item><title>Hunting Insecure Direct Object Reference Vulnerabilities for Fun and Profit (PART-1)</title><link>https://blog.securitybreached.org/2018/02/04/hunting-insecure-direct-object-reference-vulnerabilities-for-fun-and-profit-part-1/</link><guid isPermaLink="true">https://blog.securitybreached.org/2018/02/04/hunting-insecure-direct-object-reference-vulnerabilities-for-fun-and-profit-part-1/</guid><description>This is my first Blog post and i am starting with IDOR Vulnerability. In this Post you will know about many endpoints to test IDOR vulnerability! Hope you will like it.</description><pubDate>Sun, 04 Feb 2018 18:14:14 GMT</pubDate><category>bugbounty-poc</category><category>tutorials</category><category>uncategorized</category><category>bugbounty</category><category>hackerone</category><category>idor</category><category>vulnerability</category></item><item><title>How I was able to Bypass XSS Protection on HackerOne&apos;s Private Program</title><link>https://blog.securitybreached.org/2018/02/02/how-i-was-able-to-bypass-xss-protection-on-hackerones-private-program/</link><guid isPermaLink="true">https://blog.securitybreached.org/2018/02/02/how-i-was-able-to-bypass-xss-protection-on-hackerones-private-program/</guid><description>Hello friends,
This is Jay Jani here and First of all frankly I would like to tell you all that I am completely a noob so I did some noobish things here. Please forgive me for my noobness.

So, I was</description><pubDate>Fri, 02 Feb 2018 12:10:59 GMT</pubDate><category>uncategorized</category></item><item><title>How  I was able to Download Any file from Web server!</title><link>https://blog.securitybreached.org/2018/01/27/how-i-was-able-to-download-any-file-from-web-server/</link><guid isPermaLink="true">https://blog.securitybreached.org/2018/01/27/how-i-was-able-to-download-any-file-from-web-server/</guid><description>I tried to open the file but then I came to know that the file is only downloadable :/ WTF. You can&apos;t open it on web server. But I don&apos;t give up coz i have an other option that was rename the file wit</description><pubDate>Sat, 27 Jan 2018 21:23:02 GMT</pubDate><category>bugbounty-poc</category><category>downloadanyfile</category></item><item><title>KNOXSS for Dummies! A new Detailed Guide to use KNOXSS Pro in real world</title><link>https://blog.securitybreached.org/2018/01/16/knoxss-for-dummies-a-new-detailed-guide-to-use-knoxss-pro-in-real-world/</link><guid isPermaLink="true">https://blog.securitybreached.org/2018/01/16/knoxss-for-dummies-a-new-detailed-guide-to-use-knoxss-pro-in-real-world/</guid><description>Hello to all my brothers and friends.</description><pubDate>Tue, 16 Jan 2018 23:16:19 GMT</pubDate><category>bugbounty-poc</category><category>tutorials</category><category>bugbounty-poc</category><category>how-to</category><category>tutorials</category><category>xss</category></item><item><title>Security Researcher saved Careem from a Data Breach</title><link>https://blog.securitybreached.org/2017/12/19/security-researcher-saved-careem-from-a-data-breach/</link><guid isPermaLink="true">https://blog.securitybreached.org/2017/12/19/security-researcher-saved-careem-from-a-data-breach/</guid><description>The Post is about a Researcher found a security loop hole in Careem Cab app that let him takeover 1.4 Million user information,</description><pubDate>Tue, 19 Dec 2017 21:19:34 GMT</pubDate><category>news</category><category>news</category></item><item><title>Unrestricted File Upload to RCE | Bug Bounty POC</title><link>https://blog.securitybreached.org/2017/12/19/unrestricted-file-upload-to-rce-bug-bounty-poc/</link><guid isPermaLink="true">https://blog.securitybreached.org/2017/12/19/unrestricted-file-upload-to-rce-bug-bounty-poc/</guid><description>How I bypassed image upload functionality on a project to gain RCE,</description><pubDate>Tue, 19 Dec 2017 12:48:12 GMT</pubDate><category>bugbounty-poc</category><category>bugbounty-poc</category><category>rce</category></item><item><title>HOW I WAS ABLE TO TAKEOVER FACEBOOK ACCOUNT | Bug Bounty Poc</title><link>https://blog.securitybreached.org/2017/12/10/how-i-was-able-to-takeover-facebook-account-bug-bounty-poc/</link><guid isPermaLink="true">https://blog.securitybreached.org/2017/12/10/how-i-was-able-to-takeover-facebook-account-bug-bounty-poc/</guid><description>hey all here is ameer hamza,  Facebook has recently introduced login with phone functionality if you have forgotten your password. however I was able to exploit it which leads to access the facebook a</description><pubDate>Sun, 10 Dec 2017 15:30:44 GMT</pubDate><category>bugbounty-poc</category></item><item><title>My Guide to Basic Recon? | Bug Bounties + Recon | Amazing Love story.</title><link>https://blog.securitybreached.org/2017/11/25/guide-to-basic-recon-for-bugbounty/</link><guid isPermaLink="true">https://blog.securitybreached.org/2017/11/25/guide-to-basic-recon-for-bugbounty/</guid><description>The Post describe basic steps i follow before starting actual hunt for bugs in a bug bounty program, how i map out the target and which tools to use.</description><pubDate>Sat, 25 Nov 2017 11:00:35 GMT</pubDate><category>tutorials</category><category>bugbounty</category><category>how-to</category><category>recon</category></item><item><title>UBER Wildcard Subdomain Takeover | BugBounty POC</title><link>https://blog.securitybreached.org/2017/11/20/uber-wildcard-subdomain-takeover/</link><guid isPermaLink="true">https://blog.securitybreached.org/2017/11/20/uber-wildcard-subdomain-takeover/</guid><description>one of ubers domain was vulnerable to Wildcard subdomain takeover, Basically as heroku wildcard is Opened and i can register any subdomain &amp; takeover it.</description><pubDate>Mon, 20 Nov 2017 19:27:41 GMT</pubDate><category>bugbounty-poc</category><category>bugbounty-poc</category><category>subdomain-takeover</category></item><item><title>Accessing Localhost via Vhost | VIRTUAL HOST ENUMERATION | BugBounty POC</title><link>https://blog.securitybreached.org/2017/11/04/access-localhost-via-virtual-host-virtual-host-enumeration/</link><guid isPermaLink="true">https://blog.securitybreached.org/2017/11/04/access-localhost-via-virtual-host-virtual-host-enumeration/</guid><description>The Blog post is about what are Virtual Host, how U can Enumerate them and get access to the vulnerable system, including POC of resent BugBounty Report.</description><pubDate>Sat, 04 Nov 2017 10:09:57 GMT</pubDate><category>bugbounty-poc</category><category>tutorials</category><category>bugbounty-poc</category></item><item><title>What is Subdomain Hijack/Takeover Vulnerability?  How to Identify? &amp; Exploit It?</title><link>https://blog.securitybreached.org/2017/10/11/what-is-subdomain-takeover-vulnerability/</link><guid isPermaLink="true">https://blog.securitybreached.org/2017/10/11/what-is-subdomain-takeover-vulnerability/</guid><description>The post explains the basic of subdomain takeover vulnerability, how to identify and exploit the issue, post contains 5 diff services step to step guide.</description><pubDate>Wed, 11 Oct 2017 09:48:24 GMT</pubDate><category>tutorials</category><category>bugbounty-poc</category><category>subdomain-takeover</category><category>tutorials</category></item><item><title>Exploiting Insecure Cross Origin Resource Sharing ( CORS ) | api.artsy.net</title><link>https://blog.securitybreached.org/2017/10/10/exploiting-insecure-cross-origin-resource-sharing-cors-api-artsy-net/</link><guid isPermaLink="true">https://blog.securitybreached.org/2017/10/10/exploiting-insecure-cross-origin-resource-sharing-cors-api-artsy-net/</guid><description>How to find &amp; Exploit Insecure Cross Origin Resource Sharing ( CORS ), inspired by geekboy &amp; I successfully exploit the issue in a Bug Bounty program</description><pubDate>Tue, 10 Oct 2017 19:27:01 GMT</pubDate><category>bugbounty-poc</category><category>bugbounty-poc</category><category>cors</category></item><item><title>Bugcrowd’s Domain &amp; Subdomain Takeover vulnerability!</title><link>https://blog.securitybreached.org/2017/10/10/bugcrowds-domain-subdomain-takeover-vulnerability/</link><guid isPermaLink="true">https://blog.securitybreached.org/2017/10/10/bugcrowds-domain-subdomain-takeover-vulnerability/</guid><description>Bugcrowd&apos;s Domain &amp; Subdomain takeover vulnerability Due to Expired/Misconfigured Fastly &amp; Pantheon Services.. A small writeup about how i did it?</description><pubDate>Tue, 10 Oct 2017 19:20:59 GMT</pubDate><category>bugbounty-poc</category><category>bugbounty-poc</category><category>subdomain-takeover</category></item><item><title>Subdomain Takeover Through Expired Cloudfront Distribution | live.lamborghini.com</title><link>https://blog.securitybreached.org/2017/10/10/subdomain-takeover-lamborghini-hacked/</link><guid isPermaLink="true">https://blog.securitybreached.org/2017/10/10/subdomain-takeover-lamborghini-hacked/</guid><description>I found an Expired Cloudfront distribution on one of the lamborghini.com Subdomains! The Post explains how easy it is to takeover a subdomain!</description><pubDate>Tue, 10 Oct 2017 18:44:05 GMT</pubDate><category>bugbounty-poc</category><category>bugbounty-poc</category><category>subdomain-takeover</category></item><item><title>SQLi &amp; XSS Vulnerabilities in a Popular Airlines Website!</title><link>https://blog.securitybreached.org/2017/10/10/sqli-xss-vulnerabilities-in-a-popular-airlines-website/</link><guid isPermaLink="true">https://blog.securitybreached.org/2017/10/10/sqli-xss-vulnerabilities-in-a-popular-airlines-website/</guid><description>SQL injection &amp; XSS vulnerabilities in a popular Airlines Websites That can cause complete compromisation of the database and System! Here are the details</description><pubDate>Tue, 10 Oct 2017 18:34:25 GMT</pubDate><category>bugbounty-poc</category><category>bugbounty-poc</category><category>sql-injection</category><category>xss</category></item></channel></rss>